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(U) National Security Agency/Central Security Service Annual 
Intelligence Oversight Report 

I. (U) Intelligence, Counterintelligence, and Intelligence-Related Activities that 
Violated Law, Regulation, or Policy and Were Substantiated during the Year, as 
Well as Actions Taken as a Result of the Violations 


A (U) Intelligence Activities under Executive Order (E.O.) 12333 Authority 

(U) Unintentional Collection against U.S. Persons (USPs) or Foreign Persons in 
the United States 


(U// FOl | f- >) During calendar year 2010 (CY2010). National Security Agency/Central Security 
Service (NSA/CSS) analysts on l l occasions inadvertently targeted or collected 
communications to. from, or about USPs while pursuing foreign intelligence tasking. All 
intercepts and reports have been deleted or destroyed as required by United States Signals 
Intelligence (SIGINT) Directive (USSID) SP0018 


(b)(1) 

(b)(3)-P.L. i 


(b)(3)-P.L. 86-36 


1. (U) Targeting 


C 


a. (U// FOU O) On 
occasions during CY2010. NSA/CSS 


: oQ 


(U//ROW7 During CY2010. 

procedural and human errors 
contributed to[^] violations wherein 
NSA/CSS analysts targeted 
communications to. from, or about 
USPs or foreign persons in the United 
(b)(3)-P.L. 8&3& s 


(U/ /r0U0) Table 1: E.O. 12333 - Targeting Violations, 
CY2010 


No. of 
Occasions 


No. of 
Selectors 
Affected 


Failu re to review content of 
traffic l 

' {the United States _ 


Failure to verify foreignness* of 
the selector 


Human error - Analyst 
neglected to detask selectors 


Failure by analyses) to share 


analysts tasked selectors associated with 
USPs 


Ithe United 


States 


b. (IV/F OCO) On I |of I loccasions 
during CY2010, selectors for valid 
foreign intelligence targets were not 
detasked while the targets were in the 
United States. 


Customer failed to notify 
NSA/CSS | 

| t he United States 


Selector was overlooked 


Failure to understand 
procedures 


(U/ /FOUO T 


(U//FOUO) * For purposes of this report, “foreignness" refers to a target's status with respect to 
being located outside the United States. 
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(b)(i) 2. (U) Database Queries 

(b)(3)-P.L. 86-36 

a. (S//REL TO USA, — FVEV) During 

CY2010. NSA/CSS analysts on I I 
occasions performed overly broad or poorly 
constructed database queries that potentially 
targeted USPs. For example, queries used 


(U//FOUO) Table 2: E.O. 12333 - Database Query 
Violations, CY2010 



No. of 


No. of 

Selectors 

Occasions 

Affected 

Failure to verify foreignness of the 
selector 


(b)(3)-P.L 


] 


which 


produced imprecise results. 
j-P.L. 86-36 


Failure to understand proper 
procedures 

Failur e by analyst to suspend the 

quervi , 

[tne united states 


I 


Analyst included in query dates 
during which target was known to 
be in the United States 

Analyst operating under erroneous 
guidance or information _ 

Failure by analyst(s) to share 


I 


the United States 


b (U/ /FOU O) On □ of □ occasions, 
other errors contributed to violations. On I I 
of these EH occasions. NSA/CSS analysts 
used selectors associated with USPs. On □ 

°Q occasions. NSA/CSS analysts used 
selectors associated with valid foreign 
targets located in the United States. 

c. (I.I//FOUO) Note: Although the number 

of times an error occurred is noted, the _ 

number of times an analyst submitted a specific query to a raw database is not consistently 
known. 


Human error (analyst cut and 
pasted | 


into query, or included known 
selector) 



(U// TOUO) 


3. (U) Detasking Delays 

(UZ /FOUQ) On | [ occasions during CY2010. USP selectors or selector s associated with 
valid foreign targets in the United States were not detasked as required 

(b)(3)-P.L. 86-36 


(U// rOU ei Table 3: E.O. 12333 - Detasking Delays, CY2010 


No. of No. of 

Occasions Selectors 


Failure to implement 
detask order 


Selector overlooked on 
a list of selectors to be 
detasked 


U// PO tTO) 


I UP SbLkb I /7LUMINI // NUHJkN 
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4. (U) Retention 


(U/ / F OUO) During CY2010. there was one instance of im proper retenti on. Intercept of a valid 

foreign intelligence target in the United States was retained I I The improper retentioifb)(3)-P.L. 86-36 

occurred because an NSA/CSS analyst failed to mark the collection properly for deletion. 


B (U) Dissemination of U.S. Identities 


(b)(1) 

(b)(3)-P.L. 86-36 


(S//SI//REL TO I SA, FV’EY) NSA/CSS issued[ 


] SIGINT product reports during 


CY2010. In those reports. SIGINT analysts disseminated communications to. from, or about 
USPs or entities on I I occasions while pursuing foreign intelligence tasking. A total of l I 
SIGINT products were found to be improper, and the reports were canceled as NSA/CSS l | 
analysts learned of the USPs. U.S. ornanizations. or U.S. entities named in 


products without authorization. All data in the canceled reports was deleted as required, and the 
reports were not reissued or were reissued with proper minimization. 


C. (U) The Foreign 
Intelligence Surveillance 
Act (FISA) 

1. (U) NSA/CSS Title I 
FISA 

(U//f 0HO) During CY2010. 
NSA/CSS incurred | ] 

violations related to Foreign 
Intelligence Surveillance 
Court (FlSC)-authorized 
targets. 

(b)(3)-P.L. 86-36 


-tTO//OI//Nn Table 4: NSA/CSS Title 1 FISA Violations, CY2010 

... No. of 

Selectors 
Occasions Affected 

Selector in use by an unauthorized target [ 


(b)(1) 

(b)(3)-P.L. 8( 



Selector was misused P 

|raw traffic database, or 
other restricted data sources) 

USP selector included in NSA/CSS's FISA 
application in error 

Human error - Selector contained a typographical 

error 

Target erroneously believed to belong to an entity 
authorized under a valid FISC Order 

FISC Order was misunderstood 



(TS//SI//NP) * T he error occurred because an NS A FISC Order, which was renewed f 

specified that only ) | about which members were associated with 


(b)(1) 

(b)(3)-P.L. 86-36 


authorized under the order could be tasked. The previous order allowed 


associated with| 
detasked 


authorized in the order. 


]could be proved to be 


were tasked and 
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(U) Detasking Delays 

(U//F QUO) During CY2010. □ violations wherein the FISC-authorized target selectors were 
not detasked as required were discovered. 


(U//Fett©) Table 5: NSA/CSS Title 1 FISA Violations - Detasking Delays, CY2010 


Ib)(3)-P.L. 86-36 

No. of 

No. of Selectors 

Occasions Affected 


Miscommunication resulting in a failure to detask 
selector 


Analysts discovered targeted individuals^!] 

1 1 

Selectors were not fully detasked 

Human error - Analyst neglected to detask selector 

Additional selector was overlooked 

Analyst misunderstood detask 
requirements/procedures 

Selectors previously authorized had not been 
detasked prior to start of new FISC Order 


_ <u/rt= euo ) 

(U//F0l>0) * The FISC directed that selectors for this target be verified every six months. 


(U// FOUO) **Applies to allQselectors. (b)(3)-P.L. 86-36 

2. (T 3 // 31 //NF ) Business Records (BR) Order 

-(TS//Sl//N f) During CY20I0. there was one violation of the BR FISC Order. NSA/CSS 
discovered that BR metadata for a U S. telephone identifier was queried on 9 March 2010 after 
authorization to target had expired on 7 March 2010. The incident occurred because the 
identifier was mislabeled authorized until 23 March 2010. In June 2010. NSA/CSS implemented 
a new program to revalidate automatically an identifier's authorization status. 

3. (U) FISA Amendments Act (FAA) 


(U) Section 702 

(U/ /FOUO) During CY2010. NSA/CSS analysts onl I occasions incurred violations of FAA 
§702 authority: | [ targeting incidents. j^Jnon-compliant database queries.^Jdetasking delays, 
and| | tasking errors. .(b)(3)-P.L. 86-36 
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a. (U) Targeting 


(b)(3)-P.L. 86-36 


(U//FOUO) Procedural or human error contributed to^Jtargeting violations. .. 86-36 


(U//FOUO) Table 6: NSA/CSS FAA §702-Targeting Violations, CY2010 

No. of 

No. of Selectors 

Occasions Affected 

_]the United States was not reviewed, or information 


1 _ |was overlooked 

Analyst misunderstood detask requirements/procedures 

Selector was tasked using outdated foreignness 

Selector was not detasked because of a software problem 

Selector was detasked late because | |the United States 

Citizenship was not reviewed (target was a U.S. citizen) 

Failure by analyst to detask selector] _|the United States by the target 

Selector was tasked before approval 

1 1 

Incorrect selector was tasked - Insufficient research was conducted on selector 

Failure to verify foreignness of the selector 

Customer failed to notify NSA/CSS|_|the United States 


(U//Foue-) 


(b)(3)-P.L. 86-36 


b. (U) Database Queries 

(U//FOV0) On I l oti I occasions. NSA/CSS analysts used selectors associated with USPs or 
a selector[ 


. _]the United States in FAA §702J__[aw traffic 

database. On l l ofl_loccasions. NSA/CSS analysts used selectors associated with FAA §702- 

authorized target(s) located in the United States. 
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(U/y fOUO) Table 7: NSA/CSS FAA §702 - Database Query Violations, CY2010 


No. of 

No. of Selectors 
Occasions Affected 


USP selector used in query against FAA §702-authorized collection - Analyst was unaware of 
the prohibition to exclude §702 data, or selector entered in error 


Analyst included in query dates during which target was known to be in the United States 
Unauthorized selector used to query in FAA §702 ] ~ 


verify foreignness 


raw database— Analyst failed to 


Analyst failed 


the United States by the target 


Failure to unde rstand proper procedures - Analyst queried on U.S.-based selector because it was 
| |an FAA §702-approved target _ 


Failure to understand proper procedures - Analyst did not understand that the presence in the 
U.S. afforded the valid foreign intelligence target protected status 


Analyst failed to note that selector had been detasked due to the target's presence in the U.S. 


(b)(3)-P.L. 86-36 


(U/ /FOU et 


c. (U) Detasking Delays 


(b)(3)-P.L. 86-36 


(U// TQIIO) During CY2010. there wereQdetasking delays wherein FAA §702-approved 
selectors were not detasked as required. 


(U//rOU&rTable 8: NSA/CSS FAA §702 - Detasking Delays, CY2010 



No. of Days 


No. of 

Selector Tasked 

No. of 

Selectors 

Past Required 

Occasions 

Affected 

Detask Date 


Selector was overlooked 

(b)(3)-P.L. 1 

System problem 

Selector was dual-routed in error - Selector remained on tasking 

detask procedure v/as unsuccessful 

Analyst overlooked a detask notification (b)(3)-P.L. 86-36 

Failure to review] |the U.S. 

Selector discovered to be a USP - Analyst failed to immediately detask 

(U//FOUO) 
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d. (U) Tasking Errors 

(U//F QUQ ) There were □ FAA §702- 
related tasking errors in CY2010. In one 
instance, an NSA/CSS analyst inadvertently 
re-tasked □ selectors that had been 
detasked. Selectors were again detasked. 
and data collected from only □ of the 
selectors was purged. In the other instances. 

NSA/CSS analysts discovered that selectors 
for valid foreign intelligence targets had been tasked under the incorrect FAA §702 certification. 
The selectors were detasked. 

(b)(3)-P.L. 86-36 

e. (U) Retention 

(ll/ /FOl'O t During the second quarter ofCY2010. NSA/CSS implemented anew process to 
ensure that FAA collection that is required to be purged is purged fro m NSA/CSS databases. A 

h o identify data that should 


(U//f=ey€4 Table 9: NSA/CSS FAA §702 - Tasking 
Errors, CY2010 



No. of 
Occasions 

No. of 
Selectors 
Affected 

Selectors were inadvertently 
re-tasked 


(b)(3)-P.L. 

Incorrect §702 certification 
applied 



(U//FOUC0 


be purged or aged off. 

f. (U) Other 

(8//8 I //REL TO I'SA, F ' YEY) 


(b)(1) 

(b)(3)-P.L. 86-36 


(b)(1) 

(b)(3)-P.L. 86-36 
(b)(3)-50 USC 3024(i) 


NSA/CSS reported to the Department of 
Justice (DoJ) and the Office of the Director of National Intelligence an instance in which 


- tSft St fl R CL TO I SA, FVEV) Do J reported thisf 
with the FISC Rules of Procedure. 


jto the FISC in accordan ce 
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(U) Section 704 

(U//F0 UQ ) There were □ violations of 
FAA §704 authority during CY2010. In 
□ instances, approved FAA §704 
selectors were submitted to sites that were 
not approved for FAA §704 collection. 
The selectors were detask ed. and there was 
no collection. The | ] instance involved 

a non-compliant database query. The query 
was deleted, and there were no results. The 
final violation involved a 2-day detasking 
delay. 


(U//rOUO) Table 10: 
CY2010 

NSA/CSS FAA §704 Violations, 


No. of 

Occasions 

No. of 
Selectors 
Affected 


§704 selectors submitted to 
sites that were not approved 
for FAA §704 collection 

Non-compliant database query 

Detasking delay - Overlooked 
selector 


(U/ / F OU OT 


(b)(3)-P.L. 86-36 


(U) Section 705b 


(S//RKL TO I'SA, FVEY) During CY2010. Q violations of FAA §705b authority were the 
result of| | non-compliant database queries.[^detasking delays, and one tasking error. 


a. (U) Database Queries 


(b)(1) 

(b)(3)-P.L. 86-36 


(S//REL TO I'SA, FVEY) NSA/CSS is pursuing an initiative with DoJ to modify NSA/CSS’s 
§702 minimization proce dures! | 

collected FAA §702 data | | If approved, this change would align NSA/CSS’s 

procedures with the Federal Bureau of Investigation's (FBI) procedures, which permit such 
searches. 


tQ#REL TO UOA. TVEY) Table 11: NSA/CSS FAA §705b - Database Query Violations, CY2010 


No. of 
Occasions 

FAA §705b selectors used in query against FAA §702-authorized collection - Analyst was 

unaware target was under §705b authority ___ 

FAA §705b selectors used in query against FAA §702-authorized collection - 


FAA §705b selectors used in query against FAA §702-authorized collection 


FAA §705b selectors used in query against FAA §702-authorized collection - System 

problem _ 

FAA §705b selectors used in query against FAA §702-authorized collection - Analyst was 
unaware list included §705b selectors 


No. of 
Selectors 
Affected 


(b)(1) 

(b)(3)-fl.L. 86-36 
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Analyst failed to suspend queries before target’s return to the United States 


I FAA ^705b selectors used j n query against FAA $702-authorized collection 


Analyst queried unauthorized target|_ 

target - Analyst failed to verify authorization 


authorized §705b 



L. 86-36 


[S/zniiL to uqa. rv er 


b. (U) Detasking Delays 


(S//REL TO ISA, rVEV rDuring CY20I0. there were □ instances of detasking delays in 
which FAA §705b-authorized targets remained tasked after the authorization had expired. 

~ H>JJKbL I U UQA. rVEY) Table 12: NSA/CSS FAA §705b - Detasking Delays, CY2010 




No. of 

Occasions 

No. of 
Selectors 

No. of Days Selector 
Tasked Past 
Required 
Detask Date 

No. of Days 
Selector Tasked 
Past Required 
Detask Date 

Selector overlooked 
on a list of selectors to 
be detasked 





~l«as not 
instructed to detask 
selector 






f Sf/ITCL TO USA. FVEY) 


c. (U) Tasking Errors 


(b)(1) 

(b)(3)-P.L. 86-36 
(b)(3)-50 USC 3024(i) 


t TS//SI//NF ) NSA/CSS analysts discove red that | ^electors associated wit h an FAA §705b- 


authorized target were erroneously tasked| 
remained on task 


The | |seh 


selectors, 
before 


the selectors were detasked. There was no collection 

4 (U) Data Handling Errors 


(b)(1) 

(b)(3)-P.L. 86-36 


(U//FOlJOf On| [occasions during CY2010. FISA- or FAA-derived information was available 
to NSA/CSS analysts not cleared for access. On I lof theseQ occasions. NSA/CSS analysts 
inadvertently forward ed FISA- or FAA-derived information via e-mail to unauthorized 
recipients. On | | of these | | occasions, e-mail was sent to an alias that included NSA/CSS 
analysts not cleared for FISA- or FAA-derived information. 

(b)(3)-P.L. 86-36 


TQP SKRET//GOMINT//NO F O RH 
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5. (U) Unauthorized Access 


(U//FOUO) - NSA/CSS reported during CY2010 seven instances in which database access to 
FISA- and FAA-derived information was not terminated when access was no longer required. 
Once identified, the accesses were terminated. 


(b)(1) 

(b)(3)-P.L. 86-36 
(b)(3)-18 USC 798 
(b)(3)-50 USC 3024(i) 



D (U) Other 

1. (U) Computer Network Exploitation (CNE) 


2. (U) Consensual and Other Collection 


(U//F OUQ ) In CY2010. there were l | instances in which consensual collection agreements (b)(3)-P.L. 86-36 
expired and the selectors remained tasked ln | [ instances, because of human error, tasking 
continued for one additional day. There was no collection. In the last instance, tasking 
continued for six days because the 1C customer provided an incorrect date for the target’s return 
to the United States. All collection was deleted, and no reports were issued 


(U//FOUO) Also during CY2010. NSA/CSS analysts discovered that an incorrect selector was 
tasked in support of two IC agency-sponsored consensual orders. There was no collection, and 
no reports were issued. 

(TS// S1 //REL TO USA, FVEY) | I an NSA/CSS analyst queried a raw traffic 

database using a USP's telephone selector outside the Director. NSA/CSS (DIRNSA)-authorized 
period to query and task the selector. D1RNSA had authorized collection on telephone selectors 
associated with two U S. hostages. The authorization allowed tasking and querying on the 


TO P 5CCKCT//COMItrr//NOTO KTT 
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(b)(1) 

(b)(3)-P.L. 86-36 


selectors 


queried one of the telephone selectors using a date range 


an NSA/CSS analyst 


The analyst deleted the query and the results 


No 


reports based on the query results were issued. 

E. (U) Intelligence-Related Activities 


(b)(1) 

(b)(3)-P.L. 86-36 
(b)(3)-50 USC 3024(i) 


(S//SI//NF) To reduce the risk of unauthorized telephony collection and prevent violations. 
NSA/CS S instituted a process that gives analysts greater and faster insight into a target’s 
location. 



When 


collection did occur, data was purged from NSA's principal raw traffic repositories, when 

required. (t>)(i) 

/ ZbV3VP.L. 86-36 


t» /9l//NF )f 


)-50 USC 3024(i) 


NSA/CSS analysts found 


When collection 


occurred, it was purged from NSA/CSS’s principal raw traffic repositories, when required. 


(UZ /FOUQt Although not violations ofE.O 12333 and related directives. NSA/CSS reported 
during CY2010Q instances in which database access was not terminated when access was n o 
longer required. Once identified, the accesses were terminated. NSA/CSS also reported | | (b)(3)-P.L. 86-36 

instances of unauthorized access to raw SIGINT. 


(TS//SI//REL TO U S A, PVE V) [ 



3>)(1) 

86-36 

3)-18 USC 798 
3)-50 USC 3024(i) 


II. (U) NSA Office of the Inspector General (OIG) Intelligence Oversight (10) 
Inspections, Investigations, and Special Studies 


A. (U) Intelligence Oversight Inspections 


TOP 5 E CR FT //P3M i rny/NO F ORN 
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(U//FOUO)- During CY2010. the OIG reviewed various intelligence activities of the NSA/CSS 
to determine whether they had been conducted in accordance with statutes, executive orders. 
Attorney General procedures, and Department of Defense (DoD) and internal directives. With 
few exceptions, the problems uncovered were routine and showed that operating elements 
understand the restrictions on NSA/CSS activities. 


1. (U) NSA/CSS Georgia 


(UZ/ FOCQ ) The NSA/CSS Georgia 10 program, although not fully mature, has significantly 
improved since the last inspection. The program lacks a review element to assess the adequacy 
of oversight controls within NSA/CSS Georgia and tenant organizations. Processes put in place 
are not evaluated for efficiency, effectiveness, or compliance. Mission elements do not receive 
risk management reviews through the 10 program to evaluate oversight controls commensurate 
with high-risk mission areas. Reviews to assess effectiveness of processes used to add and 
remove employees from 10 training tracking systems, assess training compliance, and conduct 
analysis of incorrectly answered 10 test questions are not conducted. The NSA/CSS OIG will 
update actions taken by NSA/CSS Georgia to address the inspection findings in a future report. 


2. (U//FWO) 


(b)(3)-P.L. 86-36 


(l//Pe*lQ) The 


10 program has undergone several leadership changes in the past few 


years and. as a result, is still maturing. The site's program would benefit from continued 
attention to documentation of processes and procedures. The site does not have standard 
operating procedures (SOP) for 10. Records documenting compliance with 10 training 
requirements for | ~| personnel are incomplete; however. 


compliance with the 


required 10 annual refresher training is good. 

3. (U) 


(b)(3)-P.L. 86-36 


(b)(1) 

(b)(3)-P.L. 86-36 
(b)(3)-50 USC 3024(i) 


fS7 REL TO USA, FVEV) During an OIG review. NSA/CSS discovered that the 


formal proces s to verify whether O individu als with access to| 
had been appropriately trained. 


had no 


aining. and [ac 
access, the_ 


had deleted | [ accounts because the individuals no longer required access to the data 
account holders obtained required USSID SP001 8 training, andf Account holders obtained 
required clearances. To prevent future unauthorized 


established a formal account request process by which clearances are verified before accounts 

are created. (b)(1) 

(b)(3)-P.L. 86-36 

4. (U) C ryptologic Services Group (CSG) | 


(b)(3)-P.L. 86-36 


top SFrpFT//cotinrr//norom - 
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had no documented procedures for accomplishing 10 training of 


(U// FOU O ) CSG 

SIGINT personnel and for completing 10 quarterly reporting. Although the CSG Chief was 
designated as the 10 Officer (100). no alternate 100 was designated. During the CSG Chief s 
extended absence, the site had no official 10 point of contact. An alternate 100. who was 
designated before the inspection began, is drafting SOP for 10 training and for incident and 
quarterly reporting. 

, , i(b)(3)-P.L. 86-36 

5. (U)' ' .—. = 


(U// FOUO) The | ~| lO program has improved significantly since the 2007 inspection. The 10 
Program Manager (10 PM), now a full-time employee, has been in the position for four years, 
providing continuity for the site’s 10 program. The site's 10 processes and procedures have 
been shared as a best practice with 10 PMs throughout the NSA/CSS extended enterprise To 
assist in handling increased oversight responsibilities, the 10 PM delegated certain 10 functions 
to experienced personnel in key mission areas where there is risk for exposure to USP 
information. Despite the delegation of functions, the 10 PM does not have an officially 
designated alternate, creating a single point of failure This was noted as a program weakness in 
inspections in 2004 and 2007. The 01G will track corrective actions. 


5. (U) 


(U// FOU O H 


with NSA Analysis and Production Managers, oversees the 


SIGINT mission performed a 


under the DIRNSA SIGINT aut hority. T he 
10 Coordinator has established a viable 10 Program that enables management of the | | 

extensive 10 responsibilities. Forward-deployed personnel in AORs that are in constant flux 
follow documented procedures to manage data. Branch procedures are easily accessible to 
personnel with implementation responsibilities. 


B. (U) 10 Training 


(U// FOUO) ' t\ s a part ofNSA/CSS’s Comprehensive Mission Compliance Program. NSA/CSS 
is working to modernize existing compliance and 10 training programs. 10 training consists of 
a review of laws, regulations, and policies pertaining to NSA/CSS. Effective 1 July 2010. 
review ofDoD’s Directive Type Memorandum 08-052 became part of the NSA/CSS core 10 
training. 
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(U) ACRONYMS AND ORGANIZATIONS 


(U) 


1 

(U) BR 

Business 

Records 

(U) CNE 


Computer Network Exploitation 

(U) CSG 

Cryptologic Services Group 

(U) CY 

Calendar Year 

(U) DIRNSA 


Director. National Security Agency 

(U) DoD 


Department of Defense 

(U) DoJ 


Department of Justice 

(U) E.O. 

Executive Order 

(U) FAA 


Foreign Intelligence Surveillance Act Amendments Act 

(U) FBI 


Federal Bureau of Investigation 

(U) FISA 


Foreign Intelligence Surveillance Act 

(U) FISC 


Foreign Intelligence Surveillance Court 

(U) IC 

Intelligence 

Community 

(U) 10 

Intelligence 

Oversight 

(U) 100 


Intelligence Oversight Officer 

(U) 10 PM 


Intelligence Oversight Program Manager 

(U)l 1 


1 




(U) NSA/CSS 


National Security Agency/Central Security Service 

_ 

(U) OIG 


Office of the Inspector General 

(U) SIGINT 

Signals Intelligence 

(U) SOP 

Standard Operating Procedures 

(U) USP 

U.S. 

person 

(U) USSID 


United States Signals Intelligence Directive 


(b)(3)-P.L. 86-36 
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